Intergration for Dropday. Order automation; dropshipping and supplier automation
61%
Total Score
caution
Usable with caveats: recent releases are encouraging, but repository activity has stopped and workflow references are unpinned.
There were 0 commits and 0 active maintainers in the past three months. This is a meaningful maintenance concern, although the release history shows recent registry activity.
The repository has 8 open issues and 5 open pull requests, but no issues or pull requests were opened or merged in the past month. That suggests limited recent follow-through on project feedback.
The repository uses Composer but has no detected security scanning tools. For an integration that handles API credentials and order data, this is a transparency and maintenance gap.
No security policy was found in the repository. This is a modest concern for a package that connects to an external order-automation API, though it is not evidence of unsafe behavior by itself.
The only workflow was fully analyzed and has job-level permission scoping with no audit findings, but both of its 2 action references are unpinned. That leaves avoidable workflow supply-chain exposure.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.